Vulnerability index

Browse CVEs

187 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Garoon MEDIUM 6.5
CVE-2020-5581

Path traversal vulnerability in Cybozu Garoon 4.0.0 to 5.0.1 allows remote authenticated attackers to obtain unintended information via unspecified v…

Fix: after 5.0.1
Fix from $1,600 2020-06-30
Garoon MEDIUM 6.5
CVE-2020-5583

Cybozu Garoon 4.0.0 to 5.0.1 allows remote authenticated attackers to bypass access restriction to obtain unauthorized Multi-Report's data via unspec…

Fix: after 5.0.1
Fix from $1,600 2020-06-30
Desktop CRITICAL 9.8
CVE-2020-5537

Cybozu Desktop for Windows 2.0.23 to 2.2.40 allows remote code execution via unspecified vectors.

Fix: after 2.2.40
Fix from $2,300 2020-05-25
Garoon HIGH 7.5
CVE-2020-5567

Improper authentication vulnerability in Cybozu Garoon 4.0.0 to 4.10.3 allows remote attackers to obtain data in Application Menu.

Fix: after 4.10.3
Fix from $1,950 2020-04-28
Garoon MEDIUM 6.1
CVE-2020-5564

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.3 allows remote attackers to inject arbitrary web script or HTML via the applicatio…

Fix: after 4.10.3
Fix from $1,600 2020-04-28
Garoon MEDIUM 6.1
CVE-2020-5568

Cross-site scripting vulnerability in Cybozu Garoon 4.6.0 to 5.0.0 allows remote attackers to inject arbitrary web script or HTML via the application…

Fix: after 5.0.0
Fix from $1,600 2020-04-28
Garoon MEDIUM 5.3
CVE-2020-5563

Improper authentication vulnerability in Cybozu Garoon 4.0.0 to 4.10.3 allows remote attackers to obtain data in the affected product via the API.

Fix: after 4.10.3
Fix from $1,600 2020-04-28
Office MEDIUM 6.5
CVE-2019-6022

Directory traversal vulnerability in Cybozu Office 10.0.0 to 10.8.3 allows remote authenticated attackers to alter arbitrary files via the 'Customapp…

Fix: after 10.8.3
Fix from $1,600 2019-12-26
Garoon HIGH 7.6
CVE-2019-5991

SQL injection vulnerability in the Cybozu Garoon 4.0.0 to 4.10.3 allows remote authenticated attackers to execute arbitrary SQL commands via unspecif…

Fix: after 4.10.3
Fix from $1,950 2019-09-12
Garoon MEDIUM 6.1
CVE-2019-5978

Open redirect vulnerability in Cybozu Garoon 4.0.0 to 4.10.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing at…

Fix: after 4.10.2
Fix from $1,600 2019-09-12
Garoon MEDIUM 5.4
CVE-2019-5975

DOM-based cross-site scripting vulnerability in Cybozu Garoon 4.6.0 to 4.10.2 allows remote authenticated attackers to inject arbitrary web script or…

Fix: after 4.10.2
Fix from $1,600 2019-09-12
Garoon CRITICAL 9.8
CVE-2019-5945

Cybozu Garoon 4.2.4 to 4.10.1 allow remote attackers to obtain the users' credential information via the authentication of Cybozu Garoon.

Fix: after 4.10.1
Fix from $2,300 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5946

Open redirect vulnerability in Cybozu Garoon 4.2.4 to 4.10.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing at…

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon MEDIUM 5.4
CVE-2019-5947

Cross-site scripting vulnerability in Cybozu Garoon 4.6.0 to 4.10.1 allows remote authenticated attackers to inject arbitrary web script or HTML via …

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon HIGH 7.2
CVE-2019-5934

SQL injection vulnerability in the Cybozu Garoon 4.0.0 to 4.10.0 allows attacker with administrator rights to execute arbitrary SQL commands via the …

Fix: after 4.10.0
Fix from $1,950 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5938

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote attackers to inject arbitrary web script or HTML via the applicatio…

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5939

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote attackers to inject arbitrary web script or HTML via the applicatio…

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5940

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote attackers to inject arbitrary web script or HTML via the applicatio…

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon MEDIUM 5.4
CVE-2019-5936

Directory traversal vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to obtain files without access privileges vi…

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon MEDIUM 5.4
CVE-2019-5937

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.10.1 allows remote authenticated attackers to inject arbitrary web script or HTML via …

Fix: after 4.10.1
Fix from $1,600 2019-05-17
Garoon HIGH 8.7
CVE-2019-5931

Cybozu Garoon 4.0.0 to 4.6.3 allows authenticated attackers to alter the information with privileges invoking the installer via unspecified vectors.

Fix: after 4.6.3
Fix from $1,950 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5928

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.6.3 allows remote attackers to inject arbitrary web script or HTML via Customize Item …

Fix: after 4.6.3
Fix from $1,600 2019-05-17
Garoon MEDIUM 6.1
CVE-2019-5929

Cross-site scripting vulnerability in Cybozu Garoon 4.0.0 to 4.6.3 allows remote attackers to inject arbitrary web script or HTML via the application…

Fix: after 4.6.3
Fix from $1,600 2019-05-17
Remote Service Manager HIGH 8.8
CVE-2018-16169

Cybozu Remote Service 3.0.0 to 3.1.0 allows remote authenticated attackers to upload and execute Java code file on the server via unspecified vectors.

Fix: after 3.1.0
Fix from $1,950 2019-01-09
Remote Service Manager HIGH 8.8
CVE-2018-16171

Directory traversal vulnerability in Cybozu Remote Service 3.0.0 to 3.1.8 allows remote attackers to execute Java code file on the server via unspeci…

Fix: after 3.1.8
Fix from $1,950 2019-01-09
Remote Service Manager HIGH 8.1
CVE-2018-16170

Directory traversal vulnerability in Cybozu Remote Service 3.0.0 to 3.1.8 for Windows allows remote authenticated attackers to read arbitrary files v…

Fix: after 3.1.8
Fix from $1,950 2019-01-09
Garoon HIGH 7.5
CVE-2018-16178

Cybozu Garoon 3.0.0 to 4.10.0 allows remote attackers to bypass access restriction to view information available only for a sign-on user via Single s…

Fix: after 4.10.0
Fix from $1,950 2019-01-09
Remote Service Manager MEDIUM 6.5
CVE-2018-16172

Improper countermeasure against clickjacking attack in client certificates management screen was discovered in Cybozu Remote Service 3.0.0 to 3.1.8, …

Fix: after 3.1.8
Fix from $1,600 2019-01-09
Dezie CRITICAL 9.1
CVE-2018-0705

Directory traversal vulnerability in Cybozu Dezie 8.0.2 to 8.1.2 allows remote attackers to read arbitrary files via HTTP requests.

Fix: after 8.1.2
Fix from $2,300 2019-01-09
Mailwise HIGH 7.5
CVE-2018-0702

Directory traversal vulnerability in Cybozu Mailwise 5.0.0 to 5.4.5 allows remote attackers to delete arbitrary files via unspecified vectors.

Fix: after 5.4.5
Fix from $1,950 2019-01-09